Privacy
No Kisa cloud. No hidden copy.
Kisa is a local-first Gmail client. It does not operate a cloud mailbox or user-account service, and your mail and credentials are not retained by a Kisa backend.
What Kisa accesses
When you connect a Google account, Kisa accesses your email address, display name, profile image, and Gmail data needed to operate the mail client. Gmail data can include messages, headers, participants, thread metadata, labels, attachments, and mailbox state. Kisa uses this data to sync, display, search, compose, send, and manage mail at your direction.
Your data stays on your device
Kisa stores your encrypted OAuth credentials, cached account profile, downloaded mail, labels, local drafts, search index, account settings, and synchronization state on your device. This data persists across app restarts for as long as the account remains connected. Kisa does not upload or retain a copy on a Kisa-operated server.
Kisa connects directly to your mail provider
The app talks directly to your mail provider to sign in, refresh access, and sync and manage your mail. Kisa does not send your mail or OAuth tokens through a Kisa backend.
Mail actions affect your Gmail account
Actions such as sending mail, changing read state or labels, moving mail to Trash, and restoring mail from Spam are sent directly to Gmail. Delete forever is available only for conversations in Spam and permanently deletes the selected conversation from Gmail after you confirm the action.
AI runs only when you ask
When you choose Create reply or Clean, Kisa sends the draft or a bounded copy of cached thread context directly to your selected AI provider: Codex, Claude Code, or a provider connected through OpenCode. Kisa uses this content only to return the writing result you requested and does not use it to train an AI model. The selected provider processes the content under the terms, retention rules, and data controls of your plan with that provider.
Kisa does not provide AI accounts or retain provider credentials. AI requests are sent directly from your device using a provider command-line tool and account configured by you. Each request runs from an empty temporary directory with provider tool access restricted, and Kisa deletes temporary request output when the operation ends. Provider-side retention and model-training behavior depend on your provider, plan, and account configuration. OpenCode can connect to different upstream providers, so the provider and model selected in your OpenCode configuration determine where that request is processed.
Retention and deletion
To remove an account's locally stored Google data, open Kisa Settings, select the account, and choose Disconnect. Kisa revokes its Google access and deletes that account's saved sign-in, cached profile, downloaded mail, labels, local drafts, search index, settings, synchronization state, and trusted-sender choices from the device. Attachment preview data exists only for the current app session.
Disconnecting an account does not delete mail from Gmail or undo changes already sent to Gmail. Delete Gmail messages with Kisa's mail actions or directly in Gmail. Revoking Kisa in your Google Account prevents future access but does not by itself remove data already stored on your device; use Disconnect in Kisa before uninstalling when you want that local data removed.
Limited use of Google data
Kisa uses Google user data only to provide the user-facing mail and optional AI writing features described on this page. Kisa does not sell Google user data, use it for advertising, use it to determine creditworthiness, or use it to train or improve generalized AI or machine-learning models.
Kisa's use of information received from Google Workspace APIs adheres to the Google User Data Policy, including the Limited Use requirements.
Independent from Google
Kisa is an independent project and is not affiliated with, endorsed by, or sponsored by Google.
Website hosting
Kisa does not add analytics, tracking pixels, or advertising cookies to this site. Cloudflare hosts it and processes limited technical data, such as IP addresses and request metadata, to deliver and protect it under its privacy policy. Your theme preference is stored only in your browser.
Questions and requests
For privacy questions or help deleting data, contact the project maintainer through the Kisa repository.
Last updated August 14, 2026.